1 #ifndef _LINUX_UIDGID_H
2 #define _LINUX_UIDGID_H
5 * A set of types for the internal kernel types representing uids and gids.
7 * The types defined in this header allow distinguishing which uids and gids in
8 * the kernel are values used by userspace and which uid and gid values are
9 * the internal kernel values. With the addition of user namespaces the values
10 * can be different. Using the type system makes it possible for the compiler
11 * to detect when we overlook these differences.
14 #include <linux/types.h>
15 #include <linux/highuid.h>
17 struct user_namespace
;
18 extern struct user_namespace init_user_ns
;
20 #ifdef CONFIG_UIDGID_STRICT_TYPE_CHECKS
31 #define KUIDT_INIT(value) (kuid_t){ value }
32 #define KGIDT_INIT(value) (kgid_t){ value }
34 static inline uid_t
__kuid_val(kuid_t uid
)
39 static inline gid_t
__kgid_val(kgid_t gid
)
49 static inline uid_t
__kuid_val(kuid_t uid
)
54 static inline gid_t
__kgid_val(kgid_t gid
)
59 #define KUIDT_INIT(value) ((kuid_t) value )
60 #define KGIDT_INIT(value) ((kgid_t) value )
64 #define GLOBAL_ROOT_UID KUIDT_INIT(0)
65 #define GLOBAL_ROOT_GID KGIDT_INIT(0)
67 #define GLOBAL_SYSTEM_UID KUIDT_INIT(1000)
68 #define GLOBAL_SYSTEM_GID KGIDT_INIT(1000)
70 #define INVALID_UID KUIDT_INIT(-1)
71 #define INVALID_GID KGIDT_INIT(-1)
73 static inline bool uid_eq(kuid_t left
, kuid_t right
)
75 return __kuid_val(left
) == __kuid_val(right
);
78 static inline bool gid_eq(kgid_t left
, kgid_t right
)
80 return __kgid_val(left
) == __kgid_val(right
);
83 static inline bool uid_gt(kuid_t left
, kuid_t right
)
85 return __kuid_val(left
) > __kuid_val(right
);
88 static inline bool gid_gt(kgid_t left
, kgid_t right
)
90 return __kgid_val(left
) > __kgid_val(right
);
93 static inline bool uid_gte(kuid_t left
, kuid_t right
)
95 return __kuid_val(left
) >= __kuid_val(right
);
98 static inline bool gid_gte(kgid_t left
, kgid_t right
)
100 return __kgid_val(left
) >= __kgid_val(right
);
103 static inline bool uid_lt(kuid_t left
, kuid_t right
)
105 return __kuid_val(left
) < __kuid_val(right
);
108 static inline bool gid_lt(kgid_t left
, kgid_t right
)
110 return __kgid_val(left
) < __kgid_val(right
);
113 static inline bool uid_lte(kuid_t left
, kuid_t right
)
115 return __kuid_val(left
) <= __kuid_val(right
);
118 static inline bool gid_lte(kgid_t left
, kgid_t right
)
120 return __kgid_val(left
) <= __kgid_val(right
);
123 static inline bool uid_valid(kuid_t uid
)
125 return !uid_eq(uid
, INVALID_UID
);
128 static inline bool gid_valid(kgid_t gid
)
130 return !gid_eq(gid
, INVALID_GID
);
133 #ifdef CONFIG_USER_NS
135 extern kuid_t
make_kuid(struct user_namespace
*from
, uid_t uid
);
136 extern kgid_t
make_kgid(struct user_namespace
*from
, gid_t gid
);
138 extern uid_t
from_kuid(struct user_namespace
*to
, kuid_t uid
);
139 extern gid_t
from_kgid(struct user_namespace
*to
, kgid_t gid
);
140 extern uid_t
from_kuid_munged(struct user_namespace
*to
, kuid_t uid
);
141 extern gid_t
from_kgid_munged(struct user_namespace
*to
, kgid_t gid
);
143 static inline bool kuid_has_mapping(struct user_namespace
*ns
, kuid_t uid
)
145 return from_kuid(ns
, uid
) != (uid_t
) -1;
148 static inline bool kgid_has_mapping(struct user_namespace
*ns
, kgid_t gid
)
150 return from_kgid(ns
, gid
) != (gid_t
) -1;
155 static inline kuid_t
make_kuid(struct user_namespace
*from
, uid_t uid
)
157 return KUIDT_INIT(uid
);
160 static inline kgid_t
make_kgid(struct user_namespace
*from
, gid_t gid
)
162 return KGIDT_INIT(gid
);
165 static inline uid_t
from_kuid(struct user_namespace
*to
, kuid_t kuid
)
167 return __kuid_val(kuid
);
170 static inline gid_t
from_kgid(struct user_namespace
*to
, kgid_t kgid
)
172 return __kgid_val(kgid
);
175 static inline uid_t
from_kuid_munged(struct user_namespace
*to
, kuid_t kuid
)
177 uid_t uid
= from_kuid(to
, kuid
);
178 if (uid
== (uid_t
)-1)
183 static inline gid_t
from_kgid_munged(struct user_namespace
*to
, kgid_t kgid
)
185 gid_t gid
= from_kgid(to
, kgid
);
186 if (gid
== (gid_t
)-1)
191 static inline bool kuid_has_mapping(struct user_namespace
*ns
, kuid_t uid
)
196 static inline bool kgid_has_mapping(struct user_namespace
*ns
, kgid_t gid
)
201 #endif /* CONFIG_USER_NS */
203 #endif /* _LINUX_UIDGID_H */